package SV_ECV_TRUSTMANAGER;
import javax.net.ssl.*;
import java.security.cert.*;

import javax.net.ssl.*;
import java.security.cert.*;
public class Vulnerable {
    class TrustAll implements X509TrustManager {

        @Override
        public void checkClientTrusted(X509Certificate[] chain, String authType) throws CertificateException {  // Noncompliant, nothing means trust any client
        }

        @Override
        public void checkServerTrusted(X509Certificate[] chain, String authType)
                throws CertificateException { // Noncompliant
            System.out.println("error message");
        }

        @Override
        public X509Certificate[] getAcceptedIssuers() {
            return null;
        }
    }
}
